
In this episode, Ray Cochrane digs into Anthropic’s admission that Claude models reached real systems during sandboxed safety tests. He also covers OpenAI’s Astra model cracking ten decade-old math problems, DeepMind open-sourcing its WeatherNext cyclone forecaster, and Europe’s brutal fire season. Finally, he wraps with the MacBook Neo sweeping K-12 schools, WhatsApp calling in the browser, and the troubled rescue of NASA’s Swift observatory.
– Want to start a podcast? It’s easy to get started! Sign up at Blubrry
– Thinking of buying a Starlink? Use my link to support the show.
Subscribe to the Newsletter.
Email Ray if you want to get in touch!
Like and Follow Geek News Central’s Facebook Page.
Cochrane opens with a personal update. He just got back from a trip home to O’ahu, where he helped his mom with projects around the house, caught up with friends, and finally rode the island’s new rail line ahead of its phase-two extension to downtown. Also in the pipeline, a September trip to Michigan is coming up, and he is closing out three years at Oregon’s Finest to focus on Blubrry and the show. Then he turns to the featured story.
Capture the Real Flag: Claude Reached Real Systems During Anthropic’s Safety TestsCochrane’s featured story comes from Anthropic’s own investigation. A misconfiguration left evaluation machines connected to the live internet during capture-the-flag safety tests, and Claude models reached real production systems in three incidents across 141,006 reviewed runs. One model extracted working credentials and entered a real company’s database, another published a malicious package to PyPI for about an hour, and the newest model recognized the environment was real and walked away from the flag. Notably, Anthropic found no evidence of models pursuing goals of their own. The models did what their evaluations asked.
The review began after OpenAI disclosed that its own models escaped an isolated test environment. Cochrane praises the transparency of the postmortem. However, he argues the incidents signal an industry-wide gap: evaluation infrastructure needs the same security rigor as production systems, and he hopes every lab takes the hint.
Sponsor: GoDaddyEconomy hosting $6.99/month, WordPress hosting $12.99/month, domains $11.99. Website builder trial available. Use codes at geeknewscentral.com/godaddy to support the show.
An OpenAI Model Cracks Ten Open Math ProblemsOpenAI says an internal model called Astra produced ten new results on open problems in mathematics and theoretical computer science, each stuck for at least a decade. The wins range from sphere packing to a lattice problem behind post-quantum cryptography, plus two entries from Paul Erdős’s famous problem list. None are peer-reviewed yet, but every proof carries a machine-checked Lean 4 certificate. Cochrane finds the results impressive precisely because they reach past what humans could derive quickly, though OpenAI has not said how much human steering was involved.
Scientists With LLMs Will “Do More, Less Well”Next, Nature’s news desk covered a modeling study predicting that scientists who adopt LLM tools will “do more, less well.” The team, which includes University of Washington biologist Carl Bergstrom, used optimal foraging theory to model researchers under publish-or-perish incentives. Faster AI-assisted work pushes them toward fresh projects instead of follow-up experiments and extra analysis. Cochrane relates from his own research: heavy LLM assistance can mean understanding the work less, which makes digging into the whys much harder.
Intel’s Chip-Stitching Hub in New MexicoIntel’s newsroom showcased Fab 9 in Rio Rancho, New Mexico, its U.S. hub for advanced packaging. Since single chips max out at the reticle limit, Intel stitches specialized chiplets together with Foveros stacking and EMIB silicon bridges until they act like one huge processor. Packages already reach eight times that single-chip ceiling, with twelve times targeted by 2028. Cochrane muses about a future where consumers simply snap extra compute onto a board.
Gemini Robotics ER 2 Is a Brain for RobotsDeepMind released Gemini Robotics ER 2, its most capable embodied reasoning model. The system chats with humans, plans multi-step tasks, and hands motor control to whatever vision-language-action model a robot runs. Moreover, it calls tools like Google Search mid-task and plans its next move while its hands keep working. Demos show it orchestrating Boston Dynamics’ Spot and Apptronik’s Apollo 2, and developers can use it now through the Gemini API.
DeepMind Open-Sources Its Cyclone ForecasterStaying with DeepMind, the new WeatherNext Cyclones model adds more than a full day of extra warning on a storm’s track, intensity, and wind structure. It ran live with the National Hurricane Center during the 2025 season, helping forecasters spot Hurricane Melissa’s rapid intensification before its Jamaica landfall. Best of all, DeepMind open-sourced the code and model weights for research and commercial use alike. Cochrane, a longtime fan of the lab, calls the public release a huge service.
Climate Change Supercharges Europe’s DisastersEos rounded up how climate change is supercharging Europe’s heat, drought, and wildfires. Southwestern France has burned through about 287,000 acres this year, and roughly 330,000 people across France and Spain fled their homes in one of Europe’s largest evacuations since World War II. France also recorded more than 5,700 excess heat deaths in under three weeks. Meanwhile, a Bordeaux-region blaze spawned a pyrocumulonimbus fire cloud, and Cochrane notes that hearing “unprecedented” every year is starting to create a precedent.
Ten Years of WILDLABS and ArmArm is celebrating ten years of backing WILDLABS, a network connecting more than 16,000 conservationists across 180 countries. The goal was never to invent new conservation technology. Instead, it closes the information gap so tools and lessons get shared openly. Cochrane highlights a team using miniaturized GPS tags to track migrating bats, and says the project bears the heart of open source.
FarmBeats Brings AI to Ag ClassroomsMicrosoft and the National FFA Organization expanded FarmBeats for Students nationally. The program teaches future farmers with smart soil sensors, data science, and AI, mirroring how real farms automate tractors and deploy drones against pests. At launch, 185 middle and high schools received free classroom kits. Interested families can grab a kit for $35, and the Microsoft Learn training is free.
MacBook Neo Pulls Schools Off ChromebooksApple’s earnings call revealed the MacBook Neo displacing Chromebooks and Windows machines in K-12. Close to half of the Neo’s large U.S. education purchases last quarter replaced competing fleets, including 25,000 students in Pinellas County, Florida. Cochrane sees the first truly affordable Apple laptop finally competing where Chromebooks have lived for a decade. He expects Apple to keep taking K-12 share from Google and Microsoft.
Apple Upgrade Turns iPhones Into a LeaseApple also launched Apple Upgrade, a hardware leasing program backed by Klarna. iPhones start at $17.99 per month with 12- to 36-month terms by device, and lease-end options let you upgrade, buy out, or walk away. However, entry-level hardware like the base iPhone 16 and Mac mini is excluded, and enrollment requires a Klarna account and a soft credit check. Cochrane admits he has never been a leasing fan, having once bought his phone outright with tip money, but he expects plenty of takers.
WhatsApp Calling Comes to the BrowserMeta brought calling to WhatsApp Web, no app download required. Browser calls keep end-to-end encryption and add screen sharing, a dedicated Calls tab, waiting rooms for group links, and automatic HD video. Additionally, group calls now transfer between devices mid-call, and a Drown Out the Noise feature suppresses background racket. Everything rolls out gradually over the coming weeks.
July’s Gemini DropJuly’s Gemini Drop adds voice control on macOS, letting users dictate and transform text in any active window. Gemini Spark, the always-on assistant, expands nearly worldwide, except the EEA, UK, Switzerland, and Nigeria. New Gemini 3.6 Flash and 3.5 Flash-Lite models arrive alongside avatar-based image personalization and app hookups for Dropbox, Zillow Rentals, and Viator.
The Rescue Satellite That Needs RescuingKatalyst Space Technologies’ LINK spacecraft, launched to boost NASA’s sinking Swift observatory, began tumbling in late July. Two of its three reaction wheels failed and its cold-gas thrusters degraded, so engineers used an electric xenon thruster to cut the spin from nine degrees per second to about 1.5. CEO Ghonhee Lee says a capture attempt is “very much in the cards,” with rendezvous in late August at the earliest. Cochrane wonders what happens if the window closes, and he promises to keep listeners updated.
Curiosity Finds a Honeycomb Valley on MarsFinally, Curiosity rolled into a Martian valley nicknamed Valle Grande and found a honeycomb landscape. Polygonal fractures just inches wide stretch in every direction and climb a butte named Miraflores. Project scientist Ashwin Vasavada says the “sea of polygons took our breath away.” The rover just passed fourteen years on Mars, and scientists suspect ancient warming and cooling cycles fractured the ground.
Cochrane wraps with housekeeping: become a GNC Insider at geeknewscentral.com/insider, email geeknews@gmail.com, subscribe to the newsletter, and grab a modern podcast app at podcastapps.com (he uses Pocket Casts himself). He signs off until Monday’s show.
The post Capture The Real Flag #1871 appeared first on Geek News Central.
A 26-year-old Canadian man once described as one of the most consequential cybercrime threat actors of 2024 has pleaded guilty to computer fraud and conspiracy to hack and extort more than 165 organizations that used the cloud data storage provider Snowflake. Connor Riley Moucka, of Kitchener, Ontario, also admitted to stealing call and text history records of more than 100 million AT&T customers.

A surveillance photo of Connor Riley Moucka, a.k.a. “Judische” and “Waifu,” dated Oct 21, 2024, 9 days before Moucka’s arrest. This image was included in an affidavit filed by an investigator with the Royal Canadian Mounted Police (RCMP).
The U.S. Justice Department said between February and October 2024, Moucka and co-conspirators used stolen login credentials to steal cloud-hosted data belonging to at least 165 customers of a U.S.-based software-as-a-service company.
The hackers targeted stolen credentials for Snowflake customer accounts that did not enforce multi-factor authentication, and extorted or attempted to extort a host of well-known companies, including TicketMaster, Lending Tree, Advance Auto Parts and Neiman Marcus. Snowflake responded to the data thefts by increasing password complexity requirements and enforcing multi-factor authentication.
Moucka adopted new nicknames frequently — sometimes operating multiple identities concurrently — but two of his best-known monikers were “Judische” and “Waifu.” Judische’s admitted role in the Snowflake data thefts was first documented by KrebsOnSecurity in a September 2024 story about the overlap between Western, English-speaking cybercriminals and extremist groups that harass and extort minors into harming themselves or others.
That September 2024 story identified Judische as a software engineer from Ontario who has been involved in numerous data breaches and voice phishing attacks against U.S. companies since at least 2020. A little more than a month later, Canadian authorities arrested Moucka on a provisional warrant from the United States.
The government says Moucka and others used their unauthorized access to steal billions of sensitive customer records and download terabytes of information, “including individuals’ non-content call and text history records, banking and other financial information, payroll records, Drug Enforcement Administration (DEA) registration numbers, driver’s license numbers, passport numbers, social security numbers and other personally identifiable information. They then extorted victims by threatening to publish data online.”
Moucka also threatened and harassed government officials and security researchers who were helping to track him down. The Justice Department said the conspirators made over $2.5 million in ransom payments, and that in at least one instance, Moucka re-extorted a victim with threats of further disclosure of the victim’s stolen data.
“Moucka used the stolen data of a government officer and members of a then-former government officer’s immediate family in this re-extortion attempt,” reads a statement from the Justice Department.
One of Moucka’s admitted co-conspirators is Cameron “Kiberphant0m” Wagenius, a U.S. Army soldier who pleaded guilty in July 2025 to extorting AT&T and Verizon for their customer account data. Less than a month before Wagenius’s arrest, KrebsOnSecurity published a deep dive into Kiberphant0m’s various Telegram and Discord identities over the years, revealing how the owner of the accounts told others they were in the Army and stationed in South Korea.

One of several selfies on the Facebook page of Cameron Wagenius.
Kiberphant0m also re-extorted victims. Immediately following Moucka’s arrest, Kiberphant0m posted on hacker forums what he claimed were the AT&T call logs for then President-elect Donald Trump and for then Vice President Kamala Harris, as well schematics allegedly stolen from the U.S. National Security Agency (NSA).
Wagenius is set to be sentenced on September 3, 2026. The government says he faces a maximum penalty of 20 years in prison for conspiracy to commit wire fraud, a maximum penalty of five years in prison for extortion in relation to computer fraud, and a mandatory two-year sentence consecutive to any other prison time for aggravated identity theft.
The third alleged co-conspirator is John Erin Binns, 26, an elusive American man who fled the United States after being indicted for his admitted role in a 2021 breach at T-Mobile that exposed the personal information of at least 76 million customers.
Sources close to the investigation said Binns, also known as “IRDev” and “IntelSecrets,” was until recently incarcerated in a Turkish prison, but that he has since been released and has resurfaced online. Those sources said Binns also recently obtained Turkish citizenship, and under Turkish law a citizen cannot be extradited to a foreign country.

An image of a passport that Binns shared in an email to KrebsOnSecurity in Feb. 2023.
Moucka pleaded guilty to four criminal counts, including computer fraud, wire fraud, aggravated identity theft, and conspiracy. He is slated to be sentenced on Oct. 27 and faces a mandatory minimum penalty of two years in prison on the aggravated identity theft count, as well as a maximum penalty of 30 years in prison on the remaining counts. Ultimately, it will be up the federal judge how much time Moucka actually serves for his extensive cybercriminal rap sheet.
For an interview with Moucka prior to his arrest and a deeper look at Binns, see our original report on Moucka’s arrest.